Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


April 17, 2009

Stopping Security Breaches, Power-Grid Hackers, and Malicious Insiders

LogRhythm's 5th gen security product arrives
RSS
Subscribe to Windows IT Pro | See More Security Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!
back to blog index

A few days before LogRhythm announced LogRhythm 5.0, its integrated log and security information event management platform, a story broke in the Wall Street Journal that spies had hacked into the US electrical utility system and left tools behind that revealed their monitoring of the power grid. The story raised an outcry in the general press about computer security in the nation's infrastructure.

Knowing that LogRhythm was addressing security compliance standards of the North American Electric Reliability Corporation (NERC), the regulatory arm of the industry, in its LogRhythm product, I was interested in what Michael Reagan, LogRhythm's vice president of marketing and business development had to say about the story. In contrast to the emotion expressed by others, his reaction offered some perspective.

"What's really interesting about what we saw yesterday and in the last six to nine months, an event like that is usually a call to action," Reagan said. "But for the last six to nine months, we've seen an interest by utilities in deploying solutions not just to meet NERC CIP [cyber security standards] but because they realize the threat is real. The comforting thing is not that they're afraid now—they've been appropriately sensitive [to the risks posed by hackers and terrorists]. We need to have a steady state of vigilance and there's a mindset [in the industry] of 'we need to continue the vigilance.'"

The WSJ story mentioned external attackers but for many other organizations the greater security risk is the one posed by careless or malicious insiders. Reagan said that LogRhythm 5.0 addresses that and other threats by integrating log and security information event management in one platform, the only solution to currently bridge those two areas.

LogRhythm provides a full picture of what is occurring in an enterprise system, thanks to file monitoring, alerting, and endpoint monitoring for removable media devices. The solution alerts about near-real-time activity and lets admins track activity down to the individual user.

It can also prevent theft by blocking data transfers on selected machines and devices and can monitor, log, alert, and audit all data movement to removable media ports. The solution addresses the need many companies have for a single solution that does many things instead of having to buy multiple products, Reagan said. For more information, see LogRhythm's website.

 

 

End of Article



Reader Comments

You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now





Search Industry Bytes
 
Industry Bytes
NOVEMBER 2009
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30      
or

 Recently in Industry Bytes
Interop News: Datacom Unveils New 10Gb Data Filtering Taps and Switches
Make a Comment
Tony Redmond's Top 10 Things About Exchange 2010

Last Comment
In defense of Tony's list, remember that it's "Top 10 Things You Need to Know About Exchange 2010," ...
(3 Comments)
Hire Better Employees with This 5-Step Process
Make a Comment
MOSS 2007 and SharePoint 2010: Walking the line between past and future
Make a Comment
Notes from the Hiring Table, Part 4: Become the Ultimate Employee
Make a Comment

More blogs about technology,
software, and Windows.

Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement